$1700 Bounty | Unauthenticated Command Injection Vulnerability | Bug Bounty Methodology | POC

  Рет қаралды 4,468

Abhishek Morla

Abhishek Morla

Күн бұрын

Пікірлер: 30
@sadasdasdasd-l8i
@sadasdasdasd-l8i 9 ай бұрын
It would be great if you could make a video explaining how you found the bug from the beginning to the end :)
@lmaoo254
@lmaoo254 8 ай бұрын
It's a htb box, named paper, search it up if you want to know how he found the bug. Also you don't get paid ($1700) for solving a htb box
@Noctuu
@Noctuu 7 ай бұрын
@@lmaoo254why’d he put 1700$ bug bounty in the title then
@tomdotsh
@tomdotsh 7 ай бұрын
I've seen plenty of people do THM / HTB rooms and claim it to be a pirvate program and get paid from it@@Noctuu
@studiospan6426
@studiospan6426 3 күн бұрын
@@lmaoo254 i think he prolly did some domain forwarding to hide the domain name since it's a private program. he prolly used a private or public 0 day instead of fuzzing (guessing from the port)
@shainshashaik1473
@shainshashaik1473 8 ай бұрын
Thank you for showing trail and error .. with your video.. i got remote shell .. thanks a lot ❤❤
@abhishekmorla1
@abhishekmorla1 8 ай бұрын
Glad it helped
@shuvokumarsaha8478
@shuvokumarsaha8478 9 ай бұрын
It would be great if you could make a video explaining how you found the bug from the beginning to the end :) 2
@dittonachan
@dittonachan 9 ай бұрын
great bro, learning alot from you, do you have any blog or writeups, I want to start hunting too
@abhishekmorla1
@abhishekmorla1 9 ай бұрын
Search my name you will get some medium writeups
@__pain__05
@__pain__05 8 ай бұрын
can you make a video for recon????
@abhishekmorla1
@abhishekmorla1 8 ай бұрын
sure
@shreemadav9596
@shreemadav9596 9 ай бұрын
Great find 💯💪
@playmorefunny2340
@playmorefunny2340 8 ай бұрын
this is crazy
@CyberNinja-p1t
@CyberNinja-p1t 9 ай бұрын
omg, so cool
@miteshvalvi1170
@miteshvalvi1170 9 ай бұрын
how you find cmd parameter
@abhishekmorla1
@abhishekmorla1 9 ай бұрын
Thats the recon part..you wont find in this video
@احمدفرحان-ت7ك
@احمدفرحان-ت7ك 9 ай бұрын
🎉🎉🎉🎉🎉
@CyberTechwithNikhil
@CyberTechwithNikhil 9 ай бұрын
It's my suggestion bro, try to add some nice hackers songs music😅, to make and and watching experience better it's my suggestion just depend upon you.
@abhishekmorla1
@abhishekmorla1 9 ай бұрын
Yeah i dont have time for choosing songs bro..😅 but will start again by using some non copyright songs
@CyberTechwithNikhil
@CyberTechwithNikhil 9 ай бұрын
@@abhishekmorla1 ofcourse you can do that also
@studiospan6426
@studiospan6426 3 күн бұрын
@@abhishekmorla1 jesus christ dude i hate those songs running in the background please don't add them 😭 looks so cheap like those russian hacktivists from hackernews. most of those videos are barely any informative so i just fast forward them and mute the sound. for example they would run wpscan then visit same endpoints manually like /wp/v2/users like isn't it supposed to be scanned by wpscan automatically? why would you waste your time they don't even know what they are doing. i started bb this year march made like a 800$ till now (am noob rn) and only 20% was from automation but most of the cheap videos you would find about hacking on KZbin would be them running some tool manually for 30-40 minutes like a skiddie dude write a script automate it why waste your time. While also wasting other's time in recon wormhole.
@abhishekmorla1
@abhishekmorla1 2 күн бұрын
Ok bro ​@@studiospan6426
@jomynn
@jomynn 9 ай бұрын
How to report this bug?
@abhishekmorla1
@abhishekmorla1 9 ай бұрын
search for hackerone reports regarding same
@Srocify
@Srocify 9 ай бұрын
what the target name ?
@abhishekmorla1
@abhishekmorla1 9 ай бұрын
private program
@Srocify
@Srocify 9 ай бұрын
keep going dude i hope i can be like you
@RajuHa-g3m
@RajuHa-g3m 9 ай бұрын
​@@abhishekmorla1how did you came to know this this is this file uploaded to rce ? How you came to this post request
CAN YOU DO THIS ?
00:23
STORROR
Рет қаралды 46 МЛН
Smart Sigma Kid #funny #sigma
00:14
CRAZY GREAPA
Рет қаралды 92 МЛН
Sigma baby, you've conquered soap! 😲😮‍💨 LeoNata family #shorts
00:37
ADVANCED BUG BOUNTY TUTORIAL: BUSINESS LOGIC VULNERABILITY | 2023
15:45
$2000 worth of  SQL Injection Vulnerability Bug Bounty POC
5:56
hackwithrohit
Рет қаралды 368
I Tried 100+ Hacking Tools. These Are The Best!
9:41
NahamSec
Рет қаралды 46 М.
RCE (Remote Code Execution) in iBox Chatbot feature - PoC
3:17
Imamuddin Al Mustaqim
Рет қаралды 14 М.
SQL Injection 300$ | Bug Bounty POC | SQLi Vulnerability 2024
5:09